Monitoring Splunk

Configuring distributed monitoring console without the UI

Isaac_Hailperin
Explorer

I am trying to configure the distributed monitoring console without the UI (for automation purposes). It seems that I have gotten most things right - all instances show up the way I want them to, however they are all marked as "unreachable".

It seems that I must do the step where I provide credentials for the mc host to login to the monitored host. However I cannot figure out what this step actually does.

Also I cannot find anything that hints to the credentials being stored anywhere. So what does this login process actually do, and how can I mimic that bevhaviour for the mc from the commandline/ via config files?

Any insight on how the setup process works behind the scene would be appreciated.

Labels (1)
0 Karma

tej57
Communicator

Hello @Isaac_Hailperin ,

Can you share what steps have you taken so far? That would help understand what is actually missing.


Thanks,
Tejas.

0 Karma
Get Updates on the Splunk Community!

Enter the Dashboard Challenge and Watch the .conf24 Global Broadcast!

The Splunk Community Dashboard Challenge is still happening, and it's not too late to enter for the week of ...

Join Us at the Builder Bar at .conf24 – Empowering Innovation and Collaboration

What is the Builder Bar? The Builder Bar is more than just a place; it's a hub of creativity, collaboration, ...

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...